cbcvebase.

Tianocore Edk2 vulnerabilities

52 known vulnerabilities affecting tianocore/edk2.

Total CVEs
52
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH27MEDIUM21LOW1

Vulnerabilities

Page 1 of 3
CVE-2019-0160P3CRITICALCVSS 9.8≥ 0, < 0~20181115.85588389-12019-03-27
CVE-2019-0160 [CRITICAL] CVE-2019-0160: Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service vi Buffer overflow in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege and/or denial of service via network access.
osv
CVE-2023-45230P3HIGHCVSS 8.8≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45230 [HIGH] CWE-119 CVE-2023-45230: EDK2's Network Package is susceptible to a buffer overflow vulnerability via a long server ID option EDK2's Network Package is susceptible to a buffer overflow vulnerability via a long server ID option in DHCPv6 client. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.
nvdosv
CVE-2023-45235P3HIGHCVSS 8.8≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45235 [HIGH] CWE-119 CVE-2023-45235: EDK2's Network Package is susceptible to a buffer overflow vulnerability when handling Server I EDK2's Network Package is susceptible to a buffer overflow vulnerability when handling Server ID option from a DHCPv6 proxy Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.
nvdosv
CVE-2023-45234P3HIGHCVSS 8.8≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45234 [HIGH] CWE-119 CVE-2023-45234: EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers EDK2's Network Package is susceptible to a buffer overflow vulnerability when processing DNS Servers option from a DHCPv6 Advertise message. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality, Integrity and/or Availability.
nvdosv
CVE-2025-2296P3HIGHCVSS 8.4fixed in edk2-stable2025022025-12-09
CVE-2025-2296 [HIGH] CWE-20 CVE-2025-2296: EDK2 contains a vulnerability in BIOS where an attacker may cause “ Improper Input Validation” by lo EDK2 contains a vulnerability in BIOS where an attacker may cause “ Improper Input Validation” by local access. Successful exploitation of this vulnerability could alter control flow in unexpected ways, potentially allowing arbitrary command execution and impacting Confidentiality, Integrity, and Availability.
nvdosv
CVE-2018-12178P3CRITICALCVSS 9.1≥ 0, < 0~20160408.ffea0a2c-2ubuntu0.1≥ 0, < 0~20180205.c0d9813c-2ubuntu0.22020-04-30
CVE-2018-12178 [CRITICAL] edk2 vulnerabilities edk2 vulnerabilities A buffer overflow was discovered in the network stack. An unprivileged user could potentially enable escalation of privilege and/or denial of service. This issue was already fixed in a previous release for 18.04 LTS and 19.10. (CVE-2018-12178) A buffer overflow was discovered in BlockIo service. An unauthenticated user could potentially enable escalation of privilege, information disclosure and/or denial of service. This issue
osv
CVE-2025-2486P3HIGHCVSS 8.8v202402*v2024052025-11-26
CVE-2025-2486 [HIGH] CVE-2025-2486: The Ubuntu edk2 UEFI firmware packages accidentally allowed the UEFI Shell to be accessed in Secure The Ubuntu edk2 UEFI firmware packages accidentally allowed the UEFI Shell to be accessed in Secure Boot environments, possibly allowing bypass of Secure Boot constraints. Versions 2024.05-2ubuntu0.3 and 2024.02-2ubuntu0.3 disable the Shell. Some previous versions inserted a secure-boot-based decision to continue running inside the Shell itself, which is believe
nvdosv
CVE-2018-12180P3HIGHCVSS 8.8≥ 0, < 0~20181115.85588389-32019-03-27
CVE-2018-12180 [HIGH] CVE-2018-12180: Buffer overflow in BlockIo service for EDK II may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure Buffer overflow in BlockIo service for EDK II may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via network access.
osv
CVE-2023-45232P3HIGHCVSS 7.5≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45232 [HIGH] CWE-835 CVE-2023-45232: EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options EDK2's Network Package is susceptible to an infinite loop vulnerability when parsing unknown options in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.
nvdosv
CVE-2023-45233P3HIGHCVSS 7.5≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45233 [HIGH] CWE-835 CVE-2023-45233: EDK2's Network Package is susceptible to an infinite lop vulnerability when parsing a PadN option in EDK2's Network Package is susceptible to an infinite lop vulnerability when parsing a PadN option in the Destination Options header of IPv6. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Availability.
nvdosv
CVE-2021-38575P3HIGHCVSS 8.1≤ 2021052021-12-01
CVE-2021-38575 [HIGH] CWE-124 CVE-2021-38575: NetworkPkg/IScsiDxe has remotely exploitable buffer overflows. NetworkPkg/IScsiDxe has remotely exploitable buffer overflows.
nvdosv
CVE-2023-45236P3HIGHCVSS 7.5≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45236 [HIGH] CWE-200 CVE-2023-45236: EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerabil EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.
nvdosv
CVE-2023-45237P3HIGHCVSS 7.5≤ 202311vedk2-stable2023082024-01-16
CVE-2023-45237 [HIGH] CWE-338 CVE-2023-45237: EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerabil EDK2's Network Package is susceptible to a predictable TCP Initial Sequence Number. This vulnerability can be exploited by an attacker to gain unauthorized access and potentially lead to a loss of Confidentiality.
nvdosv
CVE-2021-38578P3CRITICALCVSS 9.8≤ 2022022022-03-03
CVE-2021-38578 [CRITICAL] CWE-124 CVE-2021-38578: Existing CommBuffer checks in SmmEntryPoint will not catch underflow when computing BufferSize. Existing CommBuffer checks in SmmEntryPoint will not catch underflow when computing BufferSize.
nvdosv
CVE-2022-36763P3HIGHCVSS 7.8≤ 202311≥ *, ≤ 2023112024-01-09
CVE-2022-36763 [HIGH] CWE-122 CVE-2022-36763: EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to tri EDK2 is susceptible to a vulnerability in the Tcg2MeasureGptTable() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.
nvdosv
CVE-2022-36764P3HIGHCVSS 7.8≤ 202311≥ *, ≤ 2023112024-01-09
CVE-2022-36764 [HIGH] CWE-122 CVE-2022-36764: EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trig EDK2 is susceptible to a vulnerability in the Tcg2MeasurePeImage() function, allowing a user to trigger a heap buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.
nvdosv
CVE-2022-36765P3HIGHCVSS 7.8≤ 202311≥ *, ≤ 2023112024-01-09
CVE-2022-36765 [HIGH] CWE-680 CVE-2022-36765: EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a int EDK2 is susceptible to a vulnerability in the CreateHob() function, allowing a user to trigger a integer overflow to buffer overflow via a local network. Successful exploitation of this vulnerability may result in a compromise of confidentiality, integrity, and/or availability.
nvdosv
CVE-2019-14559P3HIGHCVSS 7.5≥ 0, < 0~20200229.4c0f6e34-12020-11-23
CVE-2019-14559 [HIGH] CVE-2019-14559: Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access Uncontrolled resource consumption in EDK II may allow an unauthenticated user to potentially enable denial of service via network access.
osv
CVE-2019-14586P3HIGHCVSS 8.0≥ 0, < 0~20200229.4c0f6e34-12020-11-23
CVE-2019-14586 [HIGH] CVE-2019-14586: Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or de Use after free vulnerability in EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via adjacent access.
osv
CVE-2021-38576P3HIGHCVSS 7.5v201808v201811+10 more2022-01-03
CVE-2021-38576 [HIGH] CVE-2021-38576: A BIOS bug in firmware for a particular PC model leaves the Platform authorization value empty. This A BIOS bug in firmware for a particular PC model leaves the Platform authorization value empty. This can be used to permanently brick the TPM in multiple ways, as well as to non-permanently DoS the system.
nvdosv
Tianocore Edk2 vulnerabilities | cvebase